GraphQL Authorization with Open Policy Agent - Mike Cohen

Sdílet
Vložit
  • čas přidán 25. 10. 2023
  • Authorization is a crucial aspect of any API, including GraphQL. The complex nature of GraphQL requests can make it difficult to implement fine-grained authorization rules that restrict access to specific fields or arguments. Ensuring a consistent implementation across subgraphs further complicates this task. In this talk we'll explore how Indeed leveraged Open Policy Agent and the Rego policy language to enforce some authorization use cases for all subgraphs at the OneGraph layer.
  • Věda a technologie

Komentáře •